Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Fraud & Identity Theft

Landry’s Investigates Possible Card Breach

Landry’s announced on Thursday that it’s investigating reports of unauthorized charges on payment cards used at some of its restaurants.

Landry’s announced on Thursday that it’s investigating reports of unauthorized charges on payment cards used at some of its restaurants.

Landry’s is a Texas-based dining, hospitality, entertainment and gaming company that owns and operates over 500 properties, including brands like Landry’s Seafood, Chart House, Saltgrass Steak House, Bubba Gump Shrimp, Claim Jumper, Morton’s The Steakhouse, McCormick & Schmick’s, Mastro’s Restaurants and Rainforest Cafe.

The company has launched an investigation in collaboration with a cyber security firm and its payment processor, but it’s unclear at this stage how many individuals or restaurants are impacted.

“Our investigation is ongoing, but based on reports to date it appears that this issue may involve the data contained in the magnetic stripe on the back of payment cards. information in the magnetic stripe generally includes a cardholder’s name, card number, expiration date, and internal verification code,” the company stated.

Landry’s said it began a process of enhancing the security of its payment systems at a majority of its restaurants, including ones that might have been targeted by cybercriminals, before reports of a possible breach surfaced.

Security blogger Brian Krebs, who was the first to report on the news, learned from his sources in the banking industry that the malicious activity appears to have started in May 2015.

Landry’s is not the only restaurant chain hit by a payment card breach. Earlier this month, the owner of Elephant Bar restaurants informed customers that it had discovered malicious software on some payment processing systems. The malware, designed to steal information such as cardholder name, card number, expiration date and verification code, was found at various locations in California, Colorado, Arizona, Missouri, Nevada, Florida and New Mexico.

Supermarket chain Safeway was also targeted by fraudsters. Krebs reported this week that credit card skimmers had been found at some stores in California and Colorado.

Advertisement. Scroll to continue reading.

“Cybercriminals innovate daily – creating new malware and tactics that allow them to breach systems and steal data. During the holidays, all the organizations that use point of sale systems and process payment data are especially targeted because so much credit card, personal and financial data passes through those systems – a goldmine for the cybercriminal,” Paul Jespersen, VP of Emerging Technologies at Comodo, told SecurityWeek.

“To stay a step ahead of the cyber thieves, companies need to work with technology partners and integrators that are even more innovative than the cybercriminals and that implement back-end security technologies such as containment – which wraps an application and transaction in a protective bubble and ensures every POS system that uses the technology is protected from hacking attempts,” the expert added.

Related Reading: Eastern European Hackers Blamed for America’s Thrift Stores Breach

Written By

Eduard Kovacs (@EduardKovacs) is a managing editor at SecurityWeek. He worked as a high school IT teacher for two years before starting a career in journalism as Softpedia’s security news reporter. Eduard holds a bachelor’s degree in industrial informatics and a master’s degree in computer techniques applied in electrical engineering.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

Expert Insights

Related Content

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...

Fraud & Identity Theft

Famed hacker Kevin Mitnick has died after a battle with pancreatic cancer.  At the time of his death, he was Chief Hacking Officer at...

Fraud & Identity Theft

A team of researchers has demonstrated a new attack method that affects iPhone owners who use Apple Pay and Visa payment cards. The vulnerabilities...

Cybercrime

Deepfakes, left unchecked, are set to become the cybercriminals’ next big weapon

Cybercrime

A threat actor tracked as ‘Scattered Spider’ is targeting telecommunications and business process outsourcing (BPO) companies in an effort to gain access to mobile...

Application Security

Password management firm LastPass says the hackers behind an August data breach stole a massive stash of customer data, including password vault data that...

Cybercrime

While there are likely many different approaches, here are a few points that are important for enterprises to consider when evaluating bot solutions.